Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • Sophos Firewall: v20.0 - PXE-Boot Problems

    Hello everyone. I would like to share my experience regarding PXE boot with you. I have already solved the problem with thePXE boot on our old XG2300 v19.5 with the help of the forum and Sophos support. Entered the required options in the DHCP server…
  • WWAN ATT

    I have a simcard in WWAN unit but ATT does not seem to know any info on setting it up. Does anyone know what all I need to put in? Thanks.
  • Need control bandwidth cloud website.

    Hi, My business use google workspace for all service ( Gmail, Google Drive, Sheet, Doc, Slide, Etc.), We need control bandwidth for usage internet. We try config traffic shaping under application setting, i think this way only application. But if…
  • More details on how to do WAN Link Aggregation?

    I am using this documentation to understand how to do Link Aggregation, but I have a couple of questions to fill in the gaps in the documentation: https://doc.sophos.com/nsg/sophos-firewall/19.5/help/en-us/webhelp/onlinehelp/AdministratorHelp/Network…
  • XG210 VLAN proxy bypass

    We are setting up a new VLAN for handheld scanners, We require for staging and Sophos Mobile Management that the handheld scanners also have a connection to a FQDN Group of Google and Sophos websites. When I set this up I see the scanner trying to connect…
  • DISABLE BACK UP WAN | DYNAMIC IP

    Hello, We have two ISPs set up for our client's firewall. The main one is static, and the other backup is dynamic. My concern is that if the failover ISP is on dynamic, that could prevent us from remotely getting into the firewall to switch the failover…
  • Simple network design question

    Hi, I have an XGS firewall with 10gbe module and two L2 switches with spf+, one of which is poe. What would be the best way to maximize performance and pass all vlans on all switches because they still don't support stacking? Should I create a LAG…
  • XGS 107w 4G WAN Fallback not working

    Hi, I've setup 4G WAN fallback if the primary NBN connection goes down. I've confirmed the 4G WAN connection is working. However, when the primary WAN connection goes down, it's not falling over to the 4G WAN. This is the failover rule I have in…
  • Can the DHCP server register a name/address in DNS

    Can the DHCP server register a name/address in DNS
  • DHCP Static IP mapping for same client multiple networks?

    The problem from the discussion: https://community.sophos.com/sophos-xg-firewall/f/discussions/74013/dhcp-static-ip-mapping-for-same-client-multiple-networks affects me too . the feature request https://ideas.sophos.com/forums/330219-xg-firewall…
  • XGS2100 bridge to connect switches

    We have set a bridge on ports 3 and 4 to plug the Aruba 2930 switches in parralell vs daisy chain, the bridge works as expected except we had an issue with printers. the pritners connected to port 3 work, but the printers on port 4 stop connecting, has…
  • Regarding Internet Speed Assessment and Automation with Sophos Firewall

    Hello Everyone, I hope this message finds you well. I would like to understand if there is a method available to assess the internet speed of various ISPs configured on separate WAN ports within the Sophos Firewall. Additionally, It is possible to…
  • DNS Management/Implementation

    I have the below deployment on my environment Devices/Servers - Sophos XG 210 FW (Assigned it's own Public IP [i.e. x.x.x.67]) - Switch (Cisco ) - Connects all the APs and Servers - 3 Server (1 Web server with it's own Public IP [i.e. x.x.x.68…
  • XGS - internal DNS issue

    Good day, I am facing a strange issue with domain name resolution. Some domains are not resolved by XGS internal DNS. Below are nslookups from XGS Advanced shell. It used to work but suddenly stoped few days ago. Thank you for advice. DNS Configuration…
  • Update DDNS with current active gateway public IP

    I have two ISP's connected to my firewall, one is the dedicated WAN connection & the second is the failover WAN Connection. both have static IP's. I need an option to have the firewall update a single DDNS Address when the Dedicated WAN Connection fails…
  • split Vlan on same ports to another port

    In my early days we put the default + vlans on all port 1 (1 gigabit), since we having some issue with smb traffic and sometimes freezes/spikes, i wanted to try to change that. So i thought i could use port 4-8 and trunk them together and allow those…
  • traffic shaping slows internet speed

    Hi all i have a 76 Mb bandwidth , 60 PCs and i made 12 rules for each department in my workplace and allowed users in each rule to access internet by their MAC address and i made traffic shaping for each rule 4-6 Mb guranteed and then tested each rule…
  • Voice Issue

    Hi Guys, Need urgent help. Actually I have configured SSL VPN on Sophos XG Firewall for voice communication work from home. My softphone connects fine but when I dial a test call it gives the error "VOIP connection can not be established". I don…
  • IP Reservation in the DHCP pool

    Hello, I found a few threads, that there was no traditional DHCP reservation and you have to use a static MAC Mapping outside the DHCP pool. Did that feature got implemented yet or do you still need to use that way? If not, then is there a nown…
  • How to ping from CLI on Sophos XG 19

    I'm trying to send a ping to an external address using a specific interface; the documentation is not clear to me and every attempt tried throws me a "% Error: Unknown Parameter" ping -a <sourceip> <destinationip> % Error: Unknown Parameter
  • How to tell if there is a FlexModule installed on an XG or XGS VIA GUI or CLI

    Hi, Is there anyway to tell if a Flexi Module is installed besides looking at it physically ?
  • Changing DHCP DNS for LAN Clients to Internal Windows DNS

    Hi, XGS2300 is our DHCP Server. Currently, DNS settings under Network > DHCP > Default_DHCP_Server are the gateway itself for the Primary, and our ISP for the secondary DNS Servers. Works fine. Our external DNS servers (Network > DNS) are our ISP…
  • Is VRRP finally available on XGS Firewall?

    Simple Question. I know about 6 years ago this was a suggested feature and it is currently being used for HA configuration of XG Firewalls, but I do not see it available for use/configuration outside of that. When will this be added? Is it anywhere…
  • dhcp option 43 for unifi

    hi, Can anyone tell me what the format is to get the dhcp option to work for unifi please on a sophos XG? I am using option 43 and have tried the ip of the unifi controller. This worked fine on v19.5.2 but since updating to v19.5.3 it now doesnt work…
  • Multiple VLAN on each port

    On XGS series firewall, how to assign multiple VLANs on each port (port 1-8), such that each port has a native VLAN, and some allowed VLANs. e.g.: port 1, native VLAN 1, allowed VLAN 2,3,4 port 2, native VLAN 2, allowed VLAN 4,5,6 port 3, native…